QID 980422
QID 980422: Nodejs (npm) Security Update for patchmerge (GHSA-84g3-cv89-m9gm)
Prototype pollution vulnerability in 'patchmerge' versions 1.0.0 through 1.0.1 allows an attacker to cause a denial of service and may lead to remote code execution.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-84g3-cv89-m9gm for updates pertaining to this vulnerability.
Vendor References
- GHSA-84g3-cv89-m9gm -
github.com/advisories/GHSA-84g3-cv89-m9gm
CVEs related to QID 980422
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-84g3-cv89-m9gm | patchmerge |
|